Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
I wouldn't advertise the default route from the Azure firewalls to the vMX unless you're certain it won't be redistributed into AutoVPN. It's much safer to advertise only the Azure prefixes that remote sites actually need. That keeps internet-bound t...